Skip to content

v4.4.0 — Fix missing src files in published tarball

Choose a tag to compare

@sinewaveai sinewaveai released this 12 May 06:43
bd733df

Bug fix

Prior releases imported four files at runtime that were not declared in the published tarball, causing ERR_MODULE_NOT_FOUND when the package was installed globally and invoked via the composite Security Scan action. The following are now shipped:

  • src/semantic-integration.js (imported by src/tools/scan-security.js)
  • src/semantic-analyzer.js (imported by src/semantic-integration.js)
  • src/utils/github-clone.js (imported by src/cli/scan-clawhub-full.js)
  • src/utils/npm-download.js (imported by src/cli/scan-clawhub-full.js)

If you were hitting Cannot find module '.../src/semantic-integration.js' on agent-security-scanner-mcp@4.3.0, upgrade to 4.4.0.

Dependency updates

Merged via dependabot rollup:

  • fast-uri 3.1.0 → 3.1.2 — root, scanner-lite/, mcp-server-full/, prooflayer-scanner/ (#82, #84, #83, #86)
  • hono 4.12.16 → 4.12.18 (root, #85); 4.12.14 → 4.12.18 (scanner-lite/, mcp-server-full/, prooflayer-scanner/, #80/#79/#81)
  • ip-address 10.1.0 → 10.2.0, express-rate-limit 8.3.0 → 8.5.1 (mcp-server-full/, prooflayer-scanner/, #77, #78)

Install

npm install -g agent-security-scanner-mcp@4.4.0

Full Changelog: v4.3.0...v4.4.0